On TV.com: ASHLEY TISDALE photos
BNET Business Network:
BNET
TechRepublic
ZDNet

By Joris Evers, News.com
Posted on ZDNet News: Mar 17, 2006 12:00:00 PM

There's a software product coming that has the potential to demote spyware from a security priority to an afterthought: Windows Vista.

Spyware has become a serious security problem for users of Microsoft's operating system over the past years, giving rise to a host of third-party tools to fight the insidious software. But perhaps the best defensive program has yet to ship, some analysts believe.

Microsoft later this year plans to release Windows Vista, the long-awaited successor to Windows XP. The operating system is being designed to shut the door on spyware. It will introduce important changes at the heart of the operating system, as well as to Internet Explorer, and include Windows Defender, an anti-spyware tool.

"The spyware threat will definitely shrink or shrivel" as Vista gets adopted, said John Pescatore, an analyst with Gartner. "We got a handle on spam. It still gets through, but it is such a small percentage now, we know how to deal with what gets through. That same thing will happen to spyware. It will be under control."

While Microsoft was working on Vista, spyware grew into a security nightmare. Experts believe the malicious software, which pops up ads on screens or spies on PC users, has been surreptitiously put on more than three-quarters of PCs. In an FBI survey published earlier this year, 80 percent of businesses reported spyware trouble, making it the most common security woe after viruses, worms and Trojan horses.

Images: Vista tackles spyware

Every new version of Windows offers some security improvements, but Vista more so, said Rob Enderle, an analyst with the Enderle Group. "Vista, because it was pretty much conceived during the toughest times for Microsoft with regards to malicious software, has the most protection in it compared to any of their platforms," he said.

Spyware and its less-noxious cousin adware are widely despised for their sneaky distribution tactics, unauthorized data gathering and slowing of PCs. The unwanted software does not typically land on a computer the way a virus or a worm does. Instead, it creeps onto a system by tricking the user into clicking on a malicious link on a Web site or in an instant message. Alternatively, the distributor may secretly bundle it with an innocuous application that the user does want, such as a free application for file sharing.

Though spyware has been able to haunt users of XP, it won't be as easy for miscreants to get their malicious software onto machines that run Vista, said Austin Wilson, a director in the Windows Client group at Microsoft.

Vista takes on spyware

Microsoft is taking a three-pronged approach with Windows Vista to reduce the threat of spyware.

User Account Control
By default, Windows Vista will run with fewer user privileges. The privileges control how a user can interact with the software. Most Windows XP users have "administrator" privileges, which could be abused by malicious software to install itself on a computer.

In Windows Vista, users will have to invoke administrator rights to perform certain tasks, such as installing software.

Internet Explorer 7
IE 7 will run in "protected mode." This mode will prevent silent installs of malicious software by stopping the Web browser from writing data anywhere on the PC except in a temporary files folder without first seeking permission.

Windows Defender
Microsoft's anti-spyware tool will block and clean up any infections that do make it through. The tool scans for spyware, adware, rootkits and other malicious code, but does not include antivirus technology.

"We have taken out a significant number of the attack vectors that spyware authors use today," said Austin Wilson, a director in the Windows Client group at Microsoft. "We're not saying that spyware will be gone because of Windows Vista. We do think we will make a significant impact."

Microsoft is taking a multipronged approach to fight spyware. Unlike XP, Vista will run by default with fewer user privileges. People will have to invoke full, "administrator," privileges to perform tasks such as installing an application.

Also, Internet Explorer 7, included with Vista, will prevent silent installs of malicious code by stopping the browser from writing data anywhere except in a temporary files folder without first seeking permission. Lastly, Windows Defender will clean up any infections that do make it through.

"It is three layers of protection," Wilson said.

While this may be good news for buyers of Vista, it is not for anyone who makes a living from selling anti-spyware software. The worldwide market has boomed recently, reaching $97 million in revenue in 2004, up 240.4 percent from a year earlier, according to IDC. However, companies such as Webroot Software and Sunbelt Software are in for tough times, analysts said.

"The aftermarket for Windows anti-spyware is going to dry up almost completely," said Yankee Group analyst Andrew Jaquith. "Windows Defender is going to become the default anti-spyware engine, certainly for most consumers that have Vista machines."

Gartner's Pescatore agreed. "Integrating Windows Defender into Windows Vista is sort of the last nail into the standalone anti-spyware coffin," he said.

But the anti-spyware market won't disappear overnight. Vista will ship at the end of 2006, and users aren't likely to instantly buy a new PC or upgrade. "You will have a two-to-three-year window before Vista has a major impact on anti-spyware," Pescatore said.

Microsoft is also making security moves outside the anti-spyware space. The Redmond, Wash., company is readying a consumer antivirus product called Windows Live OneCare and enterprise software called Microsoft Client Protection. "The Windows security aftermarket has become too large for Microsoft to ignore it," Jaquith said.

Elsewhere on CNET
Top 10 Anti-spyware tools
Guide to the best applications for fighting spyware, courtesy of CNET and Download.com

Consumers and small businesses will get their anti-spyware protection mostly from Microsoft and may also opt for the company's antivirus product, analysts predicted. However, larger organizations will look to their trusted antivirus software makers, such as Symantec, McAfee and Trend Micro, for protection, they said.

But not everyone agrees that Vista can make spyware disappear or that its arrival spells the end of the anti-spyware industry. "I think all of these operating system enhancements are going to be helpful in the battle on spyware. I don't think there is a silver bullet, though," said David Moll, chief executive officer of Webroot, the largest standalone anti-spyware seller.

Vista will have an impact, but it won't shut the door on spyware, agreed Alex Eckelberry, president of Sunbelt Software, maker of the CounterSpy tools. There's a huge economic benefit for spyware creators and hackers to continue their practices, he said.

If Vista and Defender don't completely eliminate the threat, then there will always be a market for third party solutions, said Chris Swenson, an analyst at The NPD Group.

"I think Microsoft's new products look excellent, and they will significantly reduce the threat," Swenson said. "But...I'm more of a skeptic about their ability to prevent every single instance of spyware from infiltrating PCs."

The purveyors of spyware will respond to Windows Vista with more sophisticated attacks, Moll said--and that means people will have to be as vigilant in dealing with spyware in the Windows Vista world of the future as they are today.

"It is going to remove the low-hanging fruit. It is going to make it that much harder for dumb spyware to work," Gartner's Pescatore said. "What it will really do is start forcing the threats further up the food chain," he added. Attackers will have to get smarter in fooling the user--what's called social engineering.

Microsoft's Wilson predicts a rise in phishing attacks, which seek to dupe users into giving up personal information by using fraudulent e-mail messages and Web sites. "The profit motive is always there. They are looking for the easiest way they can trick people to getting things on their machines," he said. "We have seen a transition from spyware to phishing."

  • Talkback
  • Most Recent of 138 Talkback(s)
home business
Neo Earning
Ad Title : Required Ad Typist (member ID)
Ad Description : We are hiring ad typists for our company http://www.neoearning.com<... (Read the rest)
Posted by: bhojraj Posted on: 09/11/06 You are currently: Logged In | Log out
Much better but still... csa0307   | 03/17/06
Vista has a new secure architecture cars123   | 03/18/06
Don't believe it. It could be worse to start. There are millions of lines DonnieBoy   | 03/17/06
brilliant csa0307   | 03/17/06
But that would mean John Zern   | 03/17/06
Edumacation handydan918   | 03/17/06
re: of new bloated code in Vista. Who knows where all of the holes are? IronCladChicken   | 03/17/06
Article is speculation Gasman_z   | 03/17/06
Re: Don't believe BXLE   | 03/17/06
My evidence is jacarter3   | 03/17/06
Of course it will... Wolfie2K3   | 03/18/06
more unoriginal_sin   | 03/20/06
Not to worry: MS has sufficient defects in its michael_t   | 03/17/06
So your still jealous that... No_Ax_to_Grind   | 03/17/06
who let the trolls out? bitfuzzy   | 03/17/06
If your trying to make us sick of you... Cayble   | 03/17/06
Spyware-killing Vista could take out rivals Loverock Davidson   | 03/17/06
And what have I been telling you guys? IronCladChicken   | 03/17/06
Technology to the forefront? Gasman_z   | 03/17/06
I too support Windows during the day, but . . . jbkendrick   | 03/17/06
your nose is brown again stormdoor   | 03/17/06
Forgive stormdoor Loverock Davidson   | 03/17/06
how original stormdoor   | 03/17/06
No, he can think, he made a choice No_Ax_to_Grind   | 03/17/06
Actually, features are still being dropped. georgep_z   | 03/17/06
Pessimistic view Loverock Davidson   | 03/17/06
well.... timoute   | 03/17/06
optimistic view stormdoor   | 03/17/06
I can't wait.. mdsmedia   | 03/17/06
Apples & Oranges again??? puppadave   | 03/17/06
Thanks for the tongue in cheek, I needed it.... BXLE   | 03/17/06
Wait until victory is achieved... jasonp@...   | 03/17/06
I am waiting Loverock Davidson   | 03/17/06
Loverock...every time you touch a keyboard you look stupid. mdsmedia   | 03/17/06
Well, thats a switch... nomorems   | 03/20/06
WOW Microsoft Plugs Its Own Holes In Vista! BUCKWHEATONRICE   | 03/20/06
Vista can be hacked. Mr. Roboto   | 03/17/06
Touche' rick752   | 03/17/06
Logging in as Admin Yensi717   | 03/17/06
greatest threat; organic user interface error jimk_z   | 03/17/06
True, but not news. Cayble   | 03/17/06
Conspircey MrTombpsyco   | 03/17/06
Ever notice conspiracy whackos can't spell? ajole   | 03/17/06
Whacko Jacko wkazak@...   | 03/17/06
Igloo Marching Igny's Wit'de Fun FUn Cayble   | 03/17/06
Spell check is easy to find... BlazeEagle   | 03/17/06
I want some of what he's smoking! Cardinal_Bill   | 03/17/06
Pretty funny tic swayback   | 03/17/06
probably not DemonX   | 03/17/06
I dont get your post? Cayble   | 03/17/06
not surprised you don't get get it... mdsmedia   | 03/17/06
What's not to get? tic swayback   | 03/20/06
Not having admin rights by default mrjonno   | 03/17/06
that's why Windows is crap!!.. mdsmedia   | 03/17/06
I have to admit it! wkazak@...   | 03/17/06
Passwords Yensi717   | 03/17/06
They will buy it if they are told to! ajole   | 03/17/06
We will buy it wkazak@...   | 03/17/06
Not True stanaland   | 03/17/06
so linux and mac are bad? cars123   | 03/18/06
:) plon   | 03/17/06
I see the light now! The compeling reason to dump XP/W2K is michael_t   | 03/17/06
Right-untapped potential for MS wkazak@...   | 03/17/06
Exactly! Unlike Mac, where its buy/install/buy/install ajole   | 03/17/06
You know what... BlazeEagle   | 03/18/06
Gi. YoGi. _dietrich   | 03/18/06
It is the destiny of MS as well as of its followers michael_t   | 03/17/06
We are doomed wkazak@...   | 03/17/06
Wasted so much Money? ajole   | 03/17/06
MS and silly/crappy s/w: surprised? michael_t   | 03/19/06
more from the Apple Corps duckdodgers   | 03/20/06
oh yeah, with Apple, the update usually requires a new computer. nomorems   | 03/20/06
Entirely backward - Microsoft forces more upgrades maxsnorkel   | 03/30/06
Bullpuckies... BitTwiddler   | 03/17/06
Microsoft bought Sunbelt, Vista anti-spyware is identical to CounterSpy. xunil skcor   | 03/17/06
MS: "Only we can do that to our pledges!" LittleGuy   | 03/17/06
And 'pledges' means 'shareholders', I'd wager... HypnoToad   | 03/20/06
Sorry Microsoft but,.... DragonBRockin   | 03/17/06
MS: "Uses can't uninstall ours, it's part of the OS" LittleGuy   | 03/17/06
Guy... DragonBRockin   | 03/17/06
So you can't remove it from Vista? nomorems   | 03/20/06
I've really entered a comfort zone with windows stevey_d   | 03/17/06
sorry a bit off topic. I meant to add, Vista looks great stevey_d   | 03/17/06
HAHAHAHAHAHA!!!! DragonBRockin   | 03/17/06
We could all start using OSX or XP! ajole   | 03/17/06
Ummm... nomorems   | 03/20/06
Burning issue no.1 for the work now is... nomorems   | 03/20/06
My my, just look at the jealous little bashers. No_Ax_to_Grind   | 03/17/06
It would be funny Robert Crocker   | 03/17/06
You mean like, "This is the year of the Linux desktop". No_Ax_to_Grind   | 03/17/06
Empty promises tic swayback   | 03/17/06
hardly empty.... JoeMama_z   | 03/17/06
Two years was the promise tic swayback   | 03/20/06
Care to teach our MSDE developer how to make it work? nomorems   | 03/20/06
Users dont care about Linux...Like you said... nomorems   | 03/20/06
but xp DID solve all my security problems stevey_d   | 03/17/06
Speaking of stupid claims...both side's got 'em ajole   | 03/17/06
Differentiate between the two tic swayback   | 03/20/06
Well... nomorems   | 03/20/06
Are you addled? Processors get faster! maxsnorkel   | 03/30/06
June 2003? That's your refutation? maxsnorkel   | 03/30/06
So sad you mean nomorems   | 03/20/06
Millions of codelines pj-xmesh   | 03/17/06
Sure it is all fixed now! wkazak@...   | 03/17/06
What a brilliant idea! wkazak@...   | 03/17/06
Brilliant Man. Brilliant! _dietrich   | 03/18/06
Vista takes out Rivals ajole   | 03/17/06
Behavior consistency model wgrobinson@...   | 03/17/06
That is the brilliance of it all! wkazak@...   | 03/17/06
Does this work in XP fritsau   | 03/17/06
NO "What part of NO" jackie40d@...   | 03/17/06
You have no idea what you are talking about toadlife   | 03/17/06
Toad has no idea what real life is like... nomorems   | 03/20/06
Yes toadlife   | 03/17/06
"There is also a nice wiki site that deals with using least prviledge" nomorems   | 03/20/06
and if you believe this ? jackie40d@...   | 03/17/06
Wait _dietrich   | 03/18/06
ooooohhh! nomorems   | 03/20/06
Wow, loookit all the quotes. mobrien_12@...   | 03/17/06
Oh, yeah, NOW they will make it safe and secure? Riiiiight! critic-at-arms   | 03/17/06
Just something to chew on for a bit... Linux User 147560   | 03/17/06
Could you rewind please _dietrich   | 03/18/06
I am guessing nomorems   | 03/20/06
Too Late _dietrich   | 03/18/06
Vista has a new secure architecture cars123   | 03/18/06
Vista is old. nomorems   | 03/20/06
Vista has a new secure architecture cars123   | 03/18/06
Interesting Conjectures - Proof? BanjoPaterson   | 03/19/06
Vista has a new architecture cars123   | 03/20/06
No post of the two architectures will be printed... nomorems   | 03/20/06
FACTS ANYONE? crescentdave   | 03/19/06
Why expect anything less?? nomorems   | 03/20/06
Layers of protection? The Titanic was said to be pretty thick too... HypnoToad   | 03/20/06
Vista a Tougher OS RFG314   | 03/20/06
In attempt to cause you a hospital stay Boot_Agnostic   | 03/20/06
MS will go broke nomorems   | 03/20/06
They don't have to actually buy said companies Boot_Agnostic   | 03/21/06
home business bhojraj   | 09/11/06

What do you think?

advertisement
advertisement

The Green Enterprise

advertisement
Click Here